ISMS & GRC Analyst — Security Compliance & Risk

Clue Software

West of England

On-site

GBP 65,000 - 90,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Clue Software is seeking a Security Governance, Risk and Compliance Analyst in its Bristol office. You will administer our ISO 27001 ISMS, maintain the risk register, lead customer security assurance and coordinate evidence for audits and incidents.

You will work across Legal, IT Ops, Product and Sales to track commitments, manage third‑party risk, guide incident responses and ensure compliance with CCS, G‑Cloud 15 and the NCSC framework.

Qualifications

  • Experience maintaining an ISO 27001 ISMS and evidence library.
  • Ability to manage risk register and audit readiness.
  • Experience coordinating customer security questionnaires and due diligence.

Responsibilities

  • Administer IS policy, review schedules, and publish records with CISO approval.
  • Maintain ISO 27001:2022, SoA, evidence, and internal/external audits.
  • Lead customer security assurance and respond to due diligence requests.
  • Coordinate risk, incidents, and threat responses with stakeholders.
  • Track third-party supplier risk and governance activities.
  • Prepare governance reports and board-level updates.

Skills

ISO 27001 ISMS
Risk management
Audit coordination
Incident response
Customer security assurance
Third-party risk management
Security governance
Stakeholder coordination

Education

ISO 27001 Lead Implementer or Lead Auditor (desirable)
CISM/CRISC/CISMP (desirable)

Tools

TPRM platform

Job description

Clue Software is seeking a Security Governance, Risk and Compliance Analyst in its Bristol office. You will administer our ISO 27001 ISMS, maintain the risk register, lead customer security assurance and coordinate evidence for audits and incidents.

You will work across Legal, IT Ops, Product and Sales to track commitments, manage third‑party risk, guide incident responses and ensure compliance with CCS, G‑Cloud 15 and the NCSC framework.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC & ISMS Analyst – UK Security (Bristol, 2 days)
GRC & ISMS Analyst – UK Security (Bristol, 2 days)

Clue Computing Co. • West of England

Hybrid
GBP 60,000 - 70,000
Security GRC Analyst (ISO 27001 & Risk)
Security GRC Analyst (ISO 27001 & Risk)

Clue • West of England

Hybrid
GBP 60,000 - 70,000
Security GRC Analyst
Security GRC Analyst

Clue Software • West of England

On-site
GBP 65,000 - 90,000
Security GRC Analyst
Security GRC Analyst

Clue • West of England

Hybrid
GBP 60,000 - 70,000
Security Analyst: ISMS & Compliance (Hybrid Bristol)
Security Analyst: ISMS & Compliance (Hybrid Bristol)

Applicable Limited • West of England

Hybrid
GBP 36,000 - 60,000
25 days holiday (plus bank holidays)
Company pension
Income Protection
+3
Security Analyst: ISMS & Compliance (Hybrid, Bristol)
Security Analyst: ISMS & Compliance (Hybrid, Bristol)

Applicable • West of England

Hybrid
GBP 38,000 - 54,000
25 days holiday
Company pension
Income Protection
+6
Security GRC Analyst Operations · Bristol ·
Security GRC Analyst Operations · Bristol ·

Clue Computing Co. • West of England

Hybrid
GBP 60,000 - 70,000
Security Analyst
Security Analyst

Peaple Talent • West of England

Hybrid
GBP 45,000 - 50,000
25 days annual leave
Pension scheme: 5% employee + 4% employer
Investment in certifications
Information Security & Compliance Analyst
Information Security & Compliance Analyst

Europa Worldwide Group • United Kingdom

Hybrid
GBP 42,000 - 62,000
Hybrid working
Onsite parking
Canteen onsite
+2
Global Cyber Governance Analyst — ISMS & Risk
Global Cyber Governance Analyst — ISMS & Risk

Commify • Nottingham

Hybrid
GBP 30,000 - 40,000
Company Bonus Scheme
Healthcare cash plan
27 days annual leave
+1